What we promise and what we do not yet
Security and privacy on the left; on the right, the list of capabilities with the status of each one — including those that are not ready.
Security and isolation at every layer
Data in the São Paulo region
Processing and storage in Brazil.
Per-user access control
Each person sees only what they need.
Granular permissions
Control over sources, datasets, dashboards and queries.
Sensitive data governance
Features that support LGPD (Brazil's data protection law) best practices and PII tagging.
Service Accounts
Secure consumption by machines and integrations.
Controlled APIs and webhooks
Read-only, scoped and auditable access.
Per-customer separation
Each company's data is kept isolated, with one dataset and one bucket per tenant.
Your own cloud (BYOC)
On Business and Scale, the datalake can run in your company's cloud.
Architecture implemented and covered by tests; validating isolation in the cloud (real IAM) is a pilot stage. Each company's data is isolated per tenant, with one dataset and one bucket per customer.
Three states, no euphemisms
This page comes from the same source the product checks to allow or refuse a feature. There is no marketing version of it.
- Available
- 5
- Limited access
- 8
- Planned
- 1
- Available
- Usable today, in the product's normal flow.
- Limited access
- Exists, under the condition described on this page.
- Planned
- Not delivered yet — can't be used today.